[ubuntu/jaunty] libtk-img 1:1.3-release-8 (Accepted)

Ubuntu Installer archive at ubuntu.com
Wed Mar 18 16:47:49 GMT 2009


libtk-img (1:1.3-release-8) unstable; urgency=high

  * Applied patch by Nico Golde (previously created for Tk 8.4) which fixes
    security vulnerability CVE-2007-5137 arbitrary code execution via
    multi-frame interlaced GIF.
  * Applied patch by Nico Golde (previously created for Tk 8.4) which fixes
    security vulnerability CVE-2007-5378 overflow triggered by crafted
    GIF file (closes: #519072).
  * Set urgency to high as this upload fixes security vulnerabilities.
  * Mangled Debian version and use SF redirector in debian/watch uscan control
    file.
  * Overridden lintian warning on an ancient libtool version in libjpeg
    subdirectory because it isn't used when building the binary package.

Date: Wed,  18 Mar 2009 16:43:21 +0000
Changed-By: Kees Cook <kees at ubuntu.com>
Maintainer: Sergei Golovan <sgolovan at debian.org>
Origin: Debian/unstable
https://launchpad.net/ubuntu/jaunty/+source/libtk-img/1:1.3-release-8
-------------- next part --------------
Origin: Debian/unstable
Format: 1.7
Date: Wed,  18 Mar 2009 16:43:21 +0000
Source: libtk-img
Binary: libtk-img, libtk-img-dev, libtk-img-doc
Architecture: source
Version: 1:1.3-release-8
Distribution: jaunty
Urgency: high
Maintainer: Sergei Golovan <sgolovan at debian.org>
Changed-By: Kees Cook <kees at ubuntu.com>
Description: 
 libtk-img  - Extended image format support for Tcl/Tk (runtime)
Closes: 519072
Changes: 
 libtk-img (1:1.3-release-8) unstable; urgency=high
 .
   * Applied patch by Nico Golde (previously created for Tk 8.4) which fixes
     security vulnerability CVE-2007-5137 arbitrary code execution via
     multi-frame interlaced GIF.
   * Applied patch by Nico Golde (previously created for Tk 8.4) which fixes
     security vulnerability CVE-2007-5378 overflow triggered by crafted
     GIF file (closes: #519072).
   * Set urgency to high as this upload fixes security vulnerabilities.
   * Mangled Debian version and use SF redirector in debian/watch uscan control
     file.
   * Overridden lintian warning on an ancient libtool version in libjpeg
     subdirectory because it isn't used when building the binary package.
Files: 
 3d1c7d3b7481f817f70c1fb7c9e66137 1179 libs optional libtk-img_1.3-release-8.dsc
 02e08a84795d20a9d660a19a0aedfa5a 31770 libs optional libtk-img_1.3-release-8.diff.gz


More information about the Jaunty-changes mailing list